How to remove ASTUIWidget.dll

ASTUIWidget.dll

The module ASTUIWidget.dll has been detected as Trojan.Heur!

ASTUIWidget.dll

ASTUIWidget.dll is a Windows file recorded in the ThreatInfo database. It is associated with ASTUIWidget. The reported company name is ASUSTOR. The current detection status is Trojan.Heur!, based on the latest analysis from 2023-05-07 23:43:26 (2 years ago).

If ASTUIWidget.dll appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Trojan.Heur!.

Product Name: ASTUIWidget
Company Name: ASUSTOR
MD5: 4990dea5c833c9423a7bc65a06b1eadd
Size: 120 KB
First Published: 2023-05-07 23:43:26 (2 years ago)
Latest Published: 2023-05-07 23:43:26 (2 years ago)
Status: Trojan.Heur! (on last analysis)
Analysis Date: 2023-05-07 23:43:26 (2 years ago)
Signed By: ASUSTOR Inc.
Status: Valid

The signature on ASTUIWidget.dll is reported as valid. A valid signature helps confirm publisher identity, but it does not automatically make the file safe if the installer was bundled, abused, or downloaded from an untrusted source.

%programfiles%\asustor

ThreatInfo has observed ASTUIWidget.dll in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

100.0%

The strongest geographic signal for this file is Italy with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 100.0%

The most common operating system signal for ASTUIWidget.dll is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

ASTUIWidget.dll is identified as pe for 32 systems. The subsystem is Windows CUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x10000000
Entry Address: 0x0002000a

PE Sections:

Name Size of data MD5
-aG@45Z 14848 3c785fb23a3c2c320f117e9a44ed3ca0
.text 96256 1089037083c36c972dcb223a7aab0e2f
.rsrc 1024 01bdc009815d40332c6442c94f9cb58f
512 cfa8517e4332035da858d7e866eab129
.reloc 512 5ff57de272f4a0446855d3bb5365e6b5

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information:

Download GridinSoft Anti-Malware - Removal tool for ASTUIWidget.dll